VYPR

Mongooseos Mjs

by Cesanta

CVEs (1)

  • CVE-2021-31875CriApr 29, 2021
    risk 0.00cvss 9.8epss 0.02

    In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buffer overflow in mjs_json_parse, which can potentially lead to redirection of control flow. NOTE: the original reporter disputes the significance of this finding…